Upwind first to report malicious Keyv release that threatened thousands of JavaScript projects
Upwind first to report malicious Keyv release that threatened thousands of JavaScript projects

For years, software supply chain attacks focused on compromising widely used applications after they had already been deployed. Increasingly, however, attackers are shifting their attention further upstream, targeting the open-source packages developer…

China champions open AI to the world. In private, it’s afraid of one closed American model.
China champions open AI to the world. In private, it’s afraid of one closed American model.

China has spent the past year telling the world that AI should be open, cheap and shared. In private, its officials are unnerved by one American model that is none of those things. Beijing is growing anxious that Anthropic’s Mythos could be turned agai…

Someone posted 55 vulnerabilities in days. 54 were AI-invented. One still scored a perfect 10.
Someone posted 55 vulnerabilities in days. 54 were AI-invented. One still scored a perfect 10.

The software industry runs on a shared list of known bugs. Someone is now seeding that list with breakage that no one ever found. Security firm JFrog found six critical SQLite flaws that were pure fiction, it reported. The advisories claimed severe mem…

Britain didn’t drop its Apple backdoor. It cut the Americans out and tried again.
Britain didn’t drop its Apple backdoor. It cut the Americans out and tried again.

Britain tried to force a backdoor into Apple’s encryption last year and lost. It has not given up. It has narrowed the demand, served it again, and Apple is back in a secret court to fight it. Apple has filed a fresh challenge at the Investigatory Powe…

The danger isn’t the AI model. It’s the agent acting on its own, and Zenity raised $125m to watch it.
The danger isn’t the AI model. It’s the agent acting on its own, and Zenity raised $125m to watch it.

Most of the money spent guarding AI has gone to the model and the prompt. Zenity has just raised $125m on a different argument: both miss the real danger. That danger is the AI agent that acts on its own. The Israeli startup secures what agents do once…

A startup that lets AI hack your own network just tripled to $2bn, days after AI models hacked networks for real.
A startup that lets AI hack your own network just tripled to $2bn, days after AI models hacked networks for real.

A company whose product is an AI that hacks your network has just tripled in value. It did so in the same week that AI hacking stopped being hypothetical. Horizon3 has raised a $250m Series E at a valuation above $2bn, up from $650m a year ago. The tim…

Visa is buying BioCatch for $2.4 billion because AI scams now cost the global economy $1 trillion a year
Visa is buying BioCatch for $2.4 billion because AI scams now cost the global economy $1 trillion a year

Visa is acquiring Tel Aviv-based fraud detection startup BioCatch for $2.4 billion in cash from private equity firm Permira and other investors. BioCatch’s platform analyses keystroke timing, touchscreen pressure, swipe patterns, and device handling to…

AI agents are breaking into companies on their own. The law has no idea who to blame.
AI agents are breaking into companies on their own. The law has no idea who to blame.

The strangest security story in AI has an unanswered question at its centre. When an AI agent breaks its leash, hacks a company it was never meant to touch, and no human told it to, who is liable? Nobody is quite sure. That gap is starting to matter. T…

A hack hit the one list a wealth haven guards most: the names behind its shell companies
A hack hit the one list a wealth haven guards most: the names behind its shell companies

Of all the databases a wealth haven would least like to lose, this one is near the top. A cyberattack has reached the data of about 31,000 people in Liechtenstein’s register of the individuals behind its companies, foundations and trusts. The governmen…

The unsexy layer AI agents actually need: DataBahn raises $40m to sell it
The unsexy layer AI agents actually need: DataBahn raises $40m to sell it

The glamorous part of AI is the models. The expensive, unglamorous part is getting them the right data. A startup just raised $40 million betting that job is the next big enterprise layer. DataBahn, a Texas company founded in 2023, has closed a $40 mil…